Security restrictions bypass - CVE-2018-2755
Published: April 20, 2018
Vulnerability identifier: #VU12009
CSH Severity: Low
CVSS v4: 7.5 [CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-2755
CWE-ID: CWE-264
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a local unauthenticated attacker to gain elevated privileges on the target system.
The weakness exists in the MySQL Server component of Oracle MySQL due to improper security restrictions. A local attacker can execute arbitrary code with root privileges.
Successful exploitation of the vulnerability may result in system compromise.
The weakness exists in the MySQL Server component of Oracle MySQL due to improper security restrictions. A local attacker can execute arbitrary code with root privileges.
Successful exploitation of the vulnerability may result in system compromise.
Affected software
Amazon Linux AMI
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux EUS Compute Node
Red Hat Enterprise Linux for Power
Slackware Linux
Fedora
Tivoli Network Manager IP Edition
mysql-5.5 (Debian package)
mariadb (Alpine package)
openSUSE Leap
community-mysql
mariadb
How to mitigate CVE-2018-2755
Install update from vendor's website.
mysql-5.5 (Debian package) - addressed in versions 5.5.60-0+deb8u1, 5.5.62-0+deb8u1
mariadb (Alpine package) - update to 10.1.37-r0
community-mysql - addressed in versions 5.7.22-1.fc26, 5.7.22-1.fc27, 5.7.22-1.fc28
mariadb - addressed in versions 10.1.33-1.fc26, 10.2.15-2.fc27, 10.2.15-2.fc28
mariadb (Alpine package) - update to 10.1.37-r0
community-mysql - addressed in versions 5.7.22-1.fc26, 5.7.22-1.fc27, 5.7.22-1.fc28
mariadb - addressed in versions 10.1.33-1.fc26, 10.2.15-2.fc27, 10.2.15-2.fc28
External References
Related Security Bulletins
- Multiple vulnerabilities in Oracle MySQL
- Debian update for mysql-5.5
- Red Hat update for mysql
- Slackware Linux update for mariadb
- Amazon Linux AMI update for mysql55
- Amazon Linux AMI update for mysql56
- Amazon Linux AMI update for mysql57
- OpenSUSE Linux update for mariadb
- OpenSUSE Linux update for mariadb
- Red Hat update for mariadb
- Security restrictions bypass in mariadb (Alpine package)
- Security restrictions bypass in IBM Tivoli Network Manager IP Edition
- Fedora 28 update for community-mysql
- Fedora 27 update for community-mysql
- Fedora 26 update for community-mysql
- Fedora 26 update for mariadb
- Fedora 28 update for mariadb
- Fedora 27 update for mariadb